About CVE-2022-2856

Vulnerability Name Google Chrome Code Execution Vulnerability (CVE-2022-2856)
Attack Type Code Injection
Time Discovered 2022-08-16
Updated Time 2022-08-18
CVE ID CVE-2022-2856

Summary

A remote code execution vulnerability exists in the Chrome component. The vulnerability is due to insufficient validation of untrusted input data by Intents, which allows Google Chrome to remotely execute code. Attackers can use this vulnerability to construct malicious data to execute remote code execution attacks without authorization, and finally obtain the highest privileges on the server.

Affected Versions

Google Chrome for Android < 104.0.5112.97

Solution

The latest official version has been released, and affected users are advised to update and upgrade to the latest version in time. The link is as follows: https://chromereleases.googleblog.com/2022/08/chrome-for-android-update_17.html

Related Links

https://chromereleases.googleblog.com/2022/08/chrome-for-android-update_17.html

Listen To This Post

Search

Get in Touch

Get in Touch with Sangfor Team for Business Inquiry

Related Articles

New TellYouThePass Ransomware Variant Discovered In The Wild

Date : 25 Mar 2024
Read Now

New Mallox Ransomware Variant Discovered In The Wild

Date : 12 Mar 2024
Read Now

Multiple Vulnerabilities in VMware Products (CVE-2024-22252, CVE-2024-22253, CVE-2024-22254, and CVE-2024-22255)

Date : 08 Mar 2024
Read Now

See Other Product

Cyber Command - NDR Platform
Endpoint Secure
Internet Access Gateway (IAG)
Sangfor Network Secure - Next Generation Firewall
Platform-X
Sangfor Access Secure